K3ysTr0K3R
47 exploits
Active since Jan 2009
webcamXP <5.3.2.410 - Path Traversal
2 stars
Apache mod_cgi Bash Environment Variable Code Injection (Shellshock)
NextGen Healthcare Mirth Connect <4.4.1 - RCE
Apache Spark UI - Privilege Escalation
SpaceLogic C-Bus Home Controller < 1.31.460 - OS Command Injection
Revive Adserver <5.1.0 - Open Redirect
Ericsson Drutt Mobile Service Delivery Platform 4,5,6 Path Traversal via Dot Dot Encoded Slash
1 stars
GNU Inetutils Telnet Authentication Bypass Exploit CVE-2026-24061
CVSS 9.8
Investi <= 1.0.26 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'maximum-num-years' Shortcode Attribute
CVSS 6.4
xfrm: esp: avoid in-place decrypt on shared skb frags
CVSS 8.8
rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present
CVSS 7.8
React Server Components <19.2.0 - RCE
CVSS 10.0
crypto: algif_aead - Revert to operating out-of-place
CVSS 7.8
NextGen Healthcare Mirth Connect <4.4.1 - RCE
CVSS 9.8
NextGen Healthcare Mirth Connect <4.4.1 - RCE
CVSS 9.8
Unauthenticated Remote Code Execution - Bricks <= 1.9.6
CVSS 10.0
Openfire authentication bypass with RCE plugin
CVSS 8.6
WordPress KingComposer <2.9.6 - Open Redirect
CVSS 6.1
Hikvision IP Camera Unauthenticated Command Injection
CVSS 9.8
ProfilePress 3.0.0-3.1.3 - Unauthenticated Privilege Escalation via Registration
CVSS 9.8
Apache Tomcat 7.0.0-7.0.81, 8.0.0.RC1-8.0.46, 8.5.0-8.5.22, 9.0.0.M1-9.0.0 - Remote Code Execution via JSP Upload
CVSS 8.1
Hikvision DS-2CD2xx2F-I Series V5.2.0 build 140721 to V5.4.0 build 160530 - Improper Authentication
CVSS 9.8